Skip to content

Releases: PaloAltoNetworks/Splunk-Apps

v3.4

19 Sep 20:57
Compare
Choose a tag to compare
  • NetFlow support using NetFlow Integrator, a 3rd party program from NetFlow Logic
    • New set of dashboards, charts and graphs centered around NetFlow records from Palo Alto Networks devices
    • App-ID and User-ID information is available in NetFlow records

Download a 30-day free trial of NetFlow Integrator at https://www.netflowlogic.com/downloads
Steps to configure NetFlow are available in the NetFlow section of the app documentation and README.

v3.3.2

12 Sep 18:22
Compare
Choose a tag to compare
  • Fix: URL in WildFire dashboard corrected
  • Fix: Overview dashboard colors were gray on some servers, set back to white
  • Fix: Corrected description fields in commands.conf that resulted in log errors
  • Fix: Corrected sourcetype in inputs.conf.sample

v3.3.1

27 Jul 19:49
Compare
Choose a tag to compare
  • Fix: App setup screen allows blank values
  • Fix: Several GUI fixes and enhancements

v3.3

22 Jul 23:19
Compare
Choose a tag to compare
  • Malware analysis reports from the WildFire Cloud are dynamically downloaded and indexed when a WildFire log is received from a firewall.
  • WildFire dashboard
    • Recent WildFire events
    • Graphs of WildFire statistical data
    • Detect compromised hosts using malware behavior to traffic log correlation

Note: Malware analysis report retrieval requires a WildFire API Key from https://wildfire.paloaltonetworks.com

v3.2.1

19 Jul 15:45
Compare
Choose a tag to compare

Bug Fixes:

  • savedsearches.conf: changed hard coded index=pan_logs to pan_index in scheduled searches. Thanks to Genti Zaimi for finding the issue and providing the fix
  • pan_overview_switcher_maps.xml: modified geoip search to include localop to force the search to run on the searchhead. Thanks to Genti Zaimi for identifying the problem and providing the fix